Xceed Zip for COM/ActiveX on x86/x64 Documentation
Security vulnerabilities / CVE-2003-0107
In This Topic
    CVE-2003-0107
    In This Topic

    Description

    Buffer overflow in the gzprintf function in zlib 1.1.4, when zlib is compiled without vsnprintf or when long inputs are truncated using vsnprintf, allows attackers to cause a denial of service or possibly execute arbitrary code.

    Timeline

    Vulnerable

    No.

    Remarks

    The component does not contain this vulnerability. The component is not statically linked to any specific ZLib version. The component has its own logging and error reporting sub-system. As such, the gzprintf() code is not part of the component.

    See Also